1

Senior Bug Bounty Jobs (NOW HIRING)

Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty programs, fuzzing * Drive implementation and usage of engineering security tools - static, dynamic ...

Senior AI Engineer

New York, NY · Remote

$150K - $220K/yr

Senior AI Engineer Full-time Remote Exclusive confidential search -- details shared with qualified ... Offensive security certifications or experience (OSCP/OSWE/OSWA, CTF, bug bounty, red team)

WI · On-site

$175 - $237/hr

... Bug Bounty triage and consultation * Set the mobile security bar for Amazon's mobile applications ... Communicate complex technical decisions and trade-offs to Sr. Managers, Directors, and VPs through ...

Role Description Penetration Tester (Mid-Senior) Full-Time Remote (US) As a penetration tester on ... Active involvement in cybersecurity communities, research, or bug bounty programs * Certifications ...

Sr/Staff Security Engineer

$117K - $160K/yr

Sr/Staff Security Engineer Remote • Full-Time • Engineering About Cherry Founded in 2019 ... Conduct or coordinate penetration tests, red team exercises, and bug bounty triage; drive ...

We are seeking a Senior Application Security Engineer to lead the technical execution of our ... Oversee operational security initiatives including corporate bug bounty programs, incident response ...

As a Senior Security Engineer you will: * Serve as trusted advisor to team's leadership and partner ... Driving and supporting bug bounty program, application security reviews and threat modeling ...

Showing results 41-60

Senior Bug Bounty information

See salary details

$25K

$80.3K

$163.5K

How much do senior bug bounty jobs pay per year?

As of Aug 17, 2026, the average yearly pay for senior bug bounty in the United States is $80,287.00, according to ZipRecruiter salary data. Most workers in this role earn between $41,500.00 and $103,000.00 per year, depending on experience, location, and employer.

What is a senior bug bounty?

Senior Bug Bounty professionals are experienced cybersecurity experts who participate in bug bounty programs to identify and report security vulnerabilities in software, websites, or systems. They leverage their advanced technical skills to find complex and critical bugs, often earning higher rewards and recognition from organizations. Typically, these professionals have a strong background in ethical hacking, penetration testing, and security research, enabling them to provide valuable insights to improve overall security.

What are the key skills and qualifications needed to thrive as a senior bug bounty?

To thrive as a Senior Bug Bounty Hunter, you need advanced knowledge of cybersecurity principles, vulnerability assessment, and exploit development, often demonstrated through hands-on experience and industry certifications like OSCP or CEH. Proficiency with penetration testing tools such as Burp Suite, Nmap, Metasploit, and familiarity with bug bounty platforms like HackerOne or Bugcrowd is essential. Strong analytical thinking, persistence, and clear technical communication set top performers apart in this role. These skills are crucial to effectively identify, document, and report security vulnerabilities, helping organizations strengthen their defenses and protect sensitive data.

What are some common challenges faced by senior bug bounty professionals, and how can they best address them?

Senior Bug Bounty professionals often encounter challenges such as dealing with complex, undocumented systems, reporting duplicate vulnerabilities, and maintaining clear communication with organizations’ security teams. To overcome these hurdles, it’s important to stay up-to-date with the latest vulnerability trends, develop strong documentation habits, and build good relationships with program managers. Collaborating with other security researchers and participating in community discussions can also help in sharing knowledge and strategies for tackling difficult targets.
More about Senior Bug Bounty jobs

What cities are hiring for Senior Bug Bounty jobs?

Cities with the most Senior Bug Bounty job openings:

What are the most commonly searched types of Bug Bounty jobs?

The most popular types of Bug Bounty jobs are:

What states have the most Senior Bug Bounty jobs?

States with the most job openings for Senior Bug Bounty jobs include:

Infographic showing various Senior Bug Bounty job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 3% Part Time, and 8% Contract. Highlights an 81% Physical, 5% Hybrid, and 14% Remote job distribution, with an average salary of $80,287 per year, or $38.6 per hour.

Senior Product Security Engineer

ClickHouse

Remote

$400/day

Full-time

Posted 18 days ago


Job description

About ClickHouse
Recognized on the 2025 Forbes Cloud 100 list, ClickHouse is one of the most innovative and fast-growing private cloud companies. With more than 4,000 customers and ARR that has grown over 250 percent year over year, ClickHouse leads the market in real-time analytics, data warehousing, observability, and AI workloads.
The company's sustained, accelerating momentum was recently validated by a $400M Series D financing round. Over the past three months, customers including Capital One, Lovable, Decagon, Polymarket, and Airwallex have adopted the platform or expanded existing deployments. These customers join an established base of AI innovators and global brands such as Meta, Cursor, Sony, and Tesla.
We're on a mission to transform how companies use data. Come be a part of our journey!
About the team
The Security Team is responsible for providing key security capabilities covering application, cloud and enterprise security, incident response, detection and GRC. Our team is looking for an experienced, hands-on security practitioner, who will drive the adoption of modern security processes and tooling, with focus on supporting our engineering and product teams in improving the security posture of our platforms and services.
What you will do:
  • Collaborate with engineering and product on improving existing and building new product features with focus on threat modeling, assurance and secure implementation, some examples of recent work include implementation of secure key management, passwordless authentication, m2m authentication, sandboxing and compute/network/storage isolation
  • Identify security gaps and vulnerabilities in ClickHouse Cloud and OSS, triage a wide range of vulnerabilities reported via our bug bounty program, responsible disclosure, GitHub Issues covering web, API and server - client assets including low level memory issues like heap or buffer overflows
  • Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty programs, fuzzing
  • Drive implementation and usage of engineering security tools - static, dynamic code analysis, dependency checks, code licensing compliance (working knowledge of Snyk, Semgrep, GitHub CodeQL)
  • Nurture the engineering - security relationship, identify and implement process and technology improvements
  • Handle information security events and incidents across ClickHouse products and services
  • Develop processes, tooling and automation to scale security processes and mitigate risks to the business

What you bring along:
  • Experience supporting engineering and product implementation efforts by performing threat assessments, assurance activities, advisory as well as, in some cases, implementation work across distributed systems covering web, API, client/server assets
  • Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure), Kubernetes, Cilium, Crossplane
  • Experience implementing and operating engineering security tools and processes (e.g. static / dynamic code analysis, software composition analysis, SBOM, OWASP SAMM, client and network fuzzing tools)
  • Significant development and automation experience, ability to work with C++ code preferred
  • Security as code mindset, with focus on solving problems with automation and scale in mind

Bonus Points:
  • BS, MS, or PhD in Computer Science or related field
  • Previous contributions to open source projects
  • Security or cloud related certifications (AWS, GCP, Azure)

The typical starting salary for this role in the US is
$169,150-$191,250 USD
The typical starting salary for this role in US Premium Markets is
$169,150-$225,000 USD
Compensation
For roles based in the United States, the typical starting salary range for this position is listed above. In certain locations, such as the San Francisco Bay Area and the New York City Metro Area, a premium market range may apply, as listed.
These salary ranges reflect what we reasonably and in good faith believe to be the minimum and maximum pay for this role at the time of posting. The actual compensation may be higher or lower than the amounts listed, and the ranges may be subject to future adjustments.
An individual's placement within the range will depend on various factors, including (but not limited to) education, qualifications, certifications, experience, skills, location, performance, and the needs of the business or organization.
If you have any questions or comments about compensation as a candidate, please get in touch with us at paytransparency@clickhouse.com.
Perks
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in over 20 countries.
  • Healthcare - Employer contributions towards your healthcare.
  • Equity in the company - Every new team member who joins our company receives stock options.
  • Time off - Flexible time off in the US, generous entitlement in other countries.
  • A $500 Home office setup if you're a remote employee.
  • Global Gatherings - We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites.

Culture - We All Shape It
As part of a rapidly scaling start up, you will be instrumental in shaping our culture.
Are you interested in finding out more about our culture? Learn more about our values here. Check out our blog posts or follow us on LinkedIn to find out more about what's happening at ClickHouse.
Equal Opportunity & Privacy
ClickHouse provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment of any type based on factors such as race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
Please see here for our Privacy Statement.